Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
DanieZ
New Contributor

Fortigate FG60D two WAN VIPs on WAN2

Hello everybody. There is such a problem, I need to do VIPs from WAN2 to one of the PC in guest network.

VIPs for mail server on WAN1 work`s fine, but when I make another VIP on WAN2 it`s not work.

 

( Lan) interface Port 1 : 172.16.1.1/24 ( Guest_Lan )Interface: Port2 : 10.10.10.1/24                        WAN1 :100.100.100.1/29                        WAN2 :100.200.200.1/29   Static routes:                        WAN1 :100.100.100.1/29 distance 10                        WAN2 :100.200.200.1/29 distance 20 Routing policy (guest lan) routed from Port2: 10.10.10.1/24 to WAN2 :  100.200.200.1/29   Ipv4 Policy :  Incoming interface : WAN2 Destination Interface :Guest-Lan

Sourse Subnet :All Destination Subnet :VIPs Set Service :All Set action :Allow  Nat :Disabled

 

What I miss?

3 REPLIES 3
Sudarsan_Babu
Contributor

Hi,

 

Kindly to do below steps:

 

Change WAN2 distance as 10 . 

So WAN2 will be active routing table. Now traffic will be flow. 

 

Regards,

Sudarsan Babu P

Regards, Sudarsan Babu P
Toshi_Esumi
Esteemed Contributor III

If you want use wan1 for the rest, you can set priority like 10 (lower priority) on wan2 side.  The default value is 0 (on wan1) so it's preferred for outgoing traffic (sessions).

DanieZ
New Contributor

Thanks for answers.

Put the same distance on both WAN interfaces, created for WAN1 police routes.

After that, everything worked.

Labels
Top Kudoed Authors